davical/inc/caldav-LOCK.php

160 lines
5.4 KiB
PHP

<?php
/**
* We support both LOCK and UNLOCK methods in this function
*/
if ( ! $request->AllowedTo('write') ) {
$request->DoResponse( 403, translate("You do not have sufficient access to lock that") );
}
require_once("XMLElement.php");
$unsupported = array();
$lockinfo = array();
$inside = array();
foreach( $request->xml_tags AS $k => $v ) {
$tag = $v['tag'];
dbg_error_log( "LOCK", " Handling Tag '%s' => '%s' ", $k, $v );
switch ( $tag ) {
case 'DAV::LOCKINFO':
dbg_error_log( "LOCK", ":Request: %s -> %s", $v['type'], $tag );
if ( $v['type'] == "open" ) {
$lockscope = "";
$locktype = "";
$lockowner = "";
$inside[$tag] = true;
}
else if ( $inside[$tag] && $v['type'] == "close" ) {
$lockinfo['scope'] = $lockscope; unset($lockscope);
$lockinfo['type'] = $locktype; unset($locktype);
$lockinfo['owner'] = $lockowner; unset($lockowner);
$inside[$tag] = false;
}
break;
case 'DAV::OWNER':
case 'DAV::LOCKTYPE':
case 'DAV::LOCKSCOPE':
dbg_error_log( "LOCK", ":Request: %s -> %s", $v['type'], $tag );
if ( $inside['DAV::LOCKINFO'] ) {
if ( $v['type'] == "open" ) {
$inside[$tag] = true;
}
else if ( $inside[$tag] && $v['type'] == "close" ) {
$inside[$tag] = false;
}
}
break;
case 'DAV::EXCLUSIVE':
dbg_error_log( "LOCK", ":Request: %s -> %s", $v['type'], $tag );
if ( $inside['DAV::LOCKSCOPE'] && $v['type'] == "complete" ) {
$lockscope = strtolower(substr($tag,5));
}
break;
case 'DAV::WRITE':
dbg_error_log( "LOCK", ":Request: %s -> %s", $v['type'], $tag );
if ( $inside['DAV::LOCKTYPE'] && $v['type'] == "complete" ) {
$locktype = strtolower(substr($tag,5));
}
break;
case 'DAV::HREF':
dbg_error_log( "LOCK", ":Request: %s -> %s", $v['type'], $tag );
dbg_log_array( "LOCK", "DAV:HREF", $v, true );
if ( $inside['DAV::OWNER'] && $v['type'] == "complete" ) {
$lockowner = $v['value'];
}
break;
default:
if ( preg_match('/^(.*):([^:]+)$/', $tag, $matches) ) {
$unsupported[$matches[2]] = $matches[1];
}
else {
$unsupported[$tag] = "";
}
dbg_error_log( "LOCK", "Unhandled tag >>%s<<", $tag);
}
}
function lock_collection( $depth, $user_no, $path ) {
dbg_error_log( "LOCK", "Attempting to lock collection '%s' to depth %d", $path, $depth);
$lock = new XMLElement("lockinfo", '', array("xmlns" => "DAV:") );
}
function lock_resource( $user_no, $path ) {
global $request, $lockinfo;
dbg_error_log( "LOCK", "Attempting to lock resource '%s'", $path);
if ( ($lock_token = $request->IsLocked()) ) { // NOTE Assignment in if() is expected here.
if ( $request->ValidateLockToken($lock_token) ) {
$sql = "UPDATE locks SET start = current_timestamp WHERE opaquelocktoken = ?;";
$qry = new PgQuery($sql, $lock_token );
$qry->Exec("LOCK",__LINE__,__FILE__);
}
else {
/** FIXME: Deny the lock */
}
}
else {
$lock_token = uuid();
$sql = "INSERT INTO locks ( dav_name, opaquelocktoken, type, scope, depth, owner, timeout, start ) VALUES( ?, ?, ?, ?, ?, ?, ?::interval, current_timestamp );";
$qry = new PgQuery($sql, $request->path, $lock_token, $lockinfo['type'], $lockinfo['scope'], $request->depth, $lockinfo['owner'], $request->timeout.' seconds' );
$qry->Exec("LOCK",__LINE__,__FILE__);
}
$lock_row = $request->GetLockRow($lock_token);
$activelock = array(
new XMLElement( 'locktype', new XMLElement( $lockinfo['type'] )),
new XMLElement( 'lockscope', new XMLElement( $lockinfo['scope'] )),
new XMLElement( 'depth', $request->GetDepthName() ),
new XMLElement( 'owner', new XMLElement( 'href', $lockinfo['owner'] )),
new XMLElement( 'timeout', 'Second-'.$request->timeout),
new XMLElement( 'locktoken', new XMLElement( 'href', 'opaquelocktoken:'.$lock_token ))
);
$lock = new XMLElement("lockdiscovery", new XMLElement( "activelock", $activelock), array("xmlns" => "DAV:") );
return $lock;
}
if ( count($unsupported) > 0 ) {
/**
* That's a *BAD* request!
*/
$badprops = new XMLElement( "prop" );
foreach( $unsupported AS $k => $v ) {
// Not supported at this point...
dbg_error_log("ERROR", " LOCK: Support for $v:$k properties is not implemented yet");
$badprops->NewElement(strtolower($k),false,array("xmlns" => strtolower($v)));
}
$error = new XMLElement("error", new XMLElement( "LOCK",$badprops), array("xmlns" => "DAV:") );
$request->DoResponse( 403, $error->Render(0,'<?xml version="1.0" ?>'), 'text/xml; charset="utf-8"');
}
/**
* Something that we can handle, at least roughly correctly.
*/
$url = $c->protocol_server_port_script . $request->path ;
$url = preg_replace( '#/$#', '', $url);
if ( $request->IsCollection() ) {
$response = lock_collection( $request->depth, (isset($request->user_no) ? $request->user_no : $session->user_no), $request->path );
}
else {
$response = lock_resource( (isset($request->user_no) ? $request->user_no : $session->user_no), $request->path );
}
$prop = new XMLElement( "prop", $response, array('xmlns'=>'DAV:') );
dbg_log_array( "LOCK", "XML", $response, true );
$xmldoc = $prop->Render(0,'<?xml version="1.0" encoding="utf-8" ?>');
$request->DoResponse( 200, $xmldoc, 'text/xml; charset="utf-8"' );
?>